Skip to end of metadata
Go to start of metadata

You are viewing an old version of this page. View the current version.

Compare with Current View Page History

« Previous Version 2 Next »

Severity: Medium

Description: Checks for S3 buckets without access logging turned on. Access logging allows customers to view complete audit trail on sensitive workloads such as S3 buckets. It is recommended that Access logging is turned on for all S3 buckets to meet audit & compliance requirement.

Remediation Steps:

Perform the following to enable logging on s3 bucket :

  1. Login to the AWS Console at https://console.aws.amazon.com and navigate to the 'S3' service.

  2. Click on the the S3 bucket that was reported.

  3. Click on the 'Properties' tab.

  4. Under the 'Server access logging' section, select 'Enable logging' option.

Reference:

  • No labels